Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 22 Jul 2017 08:47:12 -0400
From:      Shawn Webb <shawn.webb@hardenedbsd.org>
To:        Yonas Yanfa <yonas@fizk.net>
Cc:        freebsd-security@freebsd.org
Subject:   Re: OpenSCAP for FreeBSD
Message-ID:  <20170722124712.oxl6yalmhdetbwfe@mutt-hbsd>
In-Reply-To: <72d3444e-5174-776e-049e-8b3099fab779@fizk.net>
References:  <3056b3dc-82d6-0634-0f14-2a4308488a95@fizk.net> <2651306.a2lTSCmlO7@freechin.atlnet> <72d3444e-5174-776e-049e-8b3099fab779@fizk.net>

next in thread | previous in thread | raw e-mail | index | archive | help

--n5gdkrdpw746dogn
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Fri, Jul 21, 2017 at 09:49:14PM -0400, Yonas Yanfa wrote:
> On 07/21/2017 20:17, Joey Kelly wrote:
> > On Friday 21 July 2017 19:21:10 Yonas Yanfa wrote:
> > > Hi,
> > >=20
> > > Is there anything like OpenSCAP for FreeBSD?
> > If it's a matter of selecting an XML profile, then surely one can be cr=
afted
> > for any OS you choose.
> >=20
>=20
> Yes, and it shouldn't be too hard to port this to FreeBSD, but possibly t=
ime
> consuming.
>=20
> The benefit of porting it is that they already have a lot of security
> policies <https://www.open-scap.org/security-policies/>; written (eg. USGC=
B,
> PCI DSS). Scanning and remedying Linux and FreeBSD systems for
> vulnerabilities could be done using the same XML file. Also, you can use
> their installer plugin
> <https://www.open-scap.org/tools/oscap-anaconda-addon/>; to set security
> profiles during install.

I'll get in touch with some of my coworkers, who were instrumental in
the creation of SCAP. I'll get their thoughts on LoE for porting to
FreeBSD. Depending on their schedules, my response may be delayed.

Thanks,

--=20
Shawn Webb
Cofounder and Security Engineer
HardenedBSD

GPG Key ID:          0x6A84658F52456EEE
GPG Key Fingerprint: 2ABA B6BD EF6A F486 BE89  3D9E 6A84 658F 5245 6EEE

--n5gdkrdpw746dogn
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=MwbR
-----END PGP SIGNATURE-----

--n5gdkrdpw746dogn--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20170722124712.oxl6yalmhdetbwfe>